[Virus] infecté Trojan.Downloader.WinFixer.W

Fermé
tinana Messages postés 3 Date d'inscription jeudi 26 juillet 2007 Statut Membre Dernière intervention 26 juillet 2007 - 26 juil. 2007 à 17:07
jalobservateur Messages postés 7372 Date d'inscription lundi 16 juillet 2007 Statut Contributeur sécurité Dernière intervention 10 mai 2012 - 26 juil. 2007 à 17:52
Bonjour,

Je n'y connais rien en informatique, et après avoir fait une analyse avec Bit-defender, je viens de me rendre compte que mon ordi est infecté par Trojan.Downloader.WinFixer.W...

Que dois-je faire? (j'ai lu quelques uns de vos messages, mais je n'y comprends pas grand chose non plus!)

Merci pour votre aide !

Tinana
A voir également:

4 réponses

jalobservateur Messages postés 7372 Date d'inscription lundi 16 juillet 2007 Statut Contributeur sécurité Dernière intervention 10 mai 2012 930
26 juil. 2007 à 17:12
0
tinana Messages postés 3 Date d'inscription jeudi 26 juillet 2007 Statut Membre Dernière intervention 26 juillet 2007
26 juil. 2007 à 17:16
Je vous poste le rapport? Il se trouve où?

Merci du coup de main!
0
tinana Messages postés 3 Date d'inscription jeudi 26 juillet 2007 Statut Membre Dernière intervention 26 juillet 2007
26 juil. 2007 à 17:31
Bon, j'ai suivi les 2 liens... J'ai fait un scan avec clean up, voici le résultat :

CleanUp! started on 07/26/07 17:18:37.
...
C:\WINDOWS\temp\tmp00003f8d\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00003f8d\ - deleted
C:\WINDOWS\temp\tmp0000405f\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000405f\ - deleted
C:\WINDOWS\temp\tmp0000409c\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000409c\ - deleted
C:\WINDOWS\temp\tmp0000409f\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000409f\ - deleted
C:\WINDOWS\temp\tmp000040a1\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000040a1\ - deleted
C:\WINDOWS\temp\tmp00004101\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004101\ - deleted
C:\WINDOWS\temp\tmp00004179\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004179\ - deleted
C:\WINDOWS\temp\tmp0000418a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000418a\ - deleted
C:\WINDOWS\temp\tmp000041a1\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000041a1\ - deleted
C:\WINDOWS\temp\tmp000041c8\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000041c8\ - deleted
C:\WINDOWS\temp\tmp000041e8\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000041e8\ - deleted
C:\WINDOWS\temp\tmp00004287\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004287\ - deleted
C:\WINDOWS\temp\tmp000042ab\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000042ab\ - deleted
C:\WINDOWS\temp\tmp0000437d\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000437d\ - deleted
C:\WINDOWS\temp\tmp00004383\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004383\ - deleted
C:\WINDOWS\temp\tmp000043fa\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000043fa\ - deleted
C:\WINDOWS\temp\tmp00004511\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004511\ - deleted
C:\WINDOWS\temp\tmp000045d2\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000045d2\ - deleted
C:\WINDOWS\temp\tmp000045db\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000045db\ - deleted
C:\WINDOWS\temp\tmp000045e0\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000045e0\ - deleted
C:\WINDOWS\temp\tmp0000460b\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000460b\ - deleted
C:\WINDOWS\temp\tmp00004641\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004641\ - deleted
C:\WINDOWS\temp\tmp0000469d\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000469d\ - deleted
C:\WINDOWS\temp\tmp00004784\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004784\ - deleted
C:\WINDOWS\temp\tmp0000479c\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000479c\ - deleted
C:\WINDOWS\temp\tmp00004814\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004814\ - deleted
C:\WINDOWS\temp\tmp0000483d\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000483d\ - deleted
C:\WINDOWS\temp\tmp00004896\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004896\ - deleted
C:\WINDOWS\temp\tmp000048a1\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000048a1\ - deleted
C:\WINDOWS\temp\tmp00004963\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004963\ - deleted
C:\WINDOWS\temp\tmp00004a23\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004a23\ - deleted
C:\WINDOWS\temp\tmp00004b28\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004b28\ - deleted
C:\WINDOWS\temp\tmp00004bbe\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004bbe\ - deleted
C:\WINDOWS\temp\tmp00004bbf\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004bbf\ - deleted
C:\WINDOWS\temp\tmp00004bdc\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004bdc\ - deleted
C:\WINDOWS\temp\tmp00004bfb\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004bfb\ - deleted
C:\WINDOWS\temp\tmp00004cd3\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004cd3\ - deleted
C:\WINDOWS\temp\tmp00004dc2\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004dc2\ - deleted
C:\WINDOWS\temp\tmp00004dc7\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004dc7\ - deleted
C:\WINDOWS\temp\tmp00004df2\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004df2\ - deleted
C:\WINDOWS\temp\tmp00004e6a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004e6a\ - deleted
C:\WINDOWS\temp\tmp00004ee4\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004ee4\ - deleted
C:\WINDOWS\temp\tmp00004f96\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00004f96\ - deleted
C:\WINDOWS\temp\tmp00005006\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005006\ - deleted
C:\WINDOWS\temp\tmp00005018\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005018\ - deleted
C:\WINDOWS\temp\tmp00005058\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005058\ - deleted
C:\WINDOWS\temp\tmp00005091\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005091\ - deleted
C:\WINDOWS\temp\tmp0000513b\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000513b\ - deleted
C:\WINDOWS\temp\tmp0000513e\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000513e\ - deleted
C:\WINDOWS\temp\tmp000051c7\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000051c7\ - deleted
C:\WINDOWS\temp\tmp0000523c\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000523c\ - deleted
C:\WINDOWS\temp\tmp00005285\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005285\ - deleted
C:\WINDOWS\temp\tmp000052a3\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000052a3\ - deleted
C:\WINDOWS\temp\tmp00005334\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005334\ - deleted
C:\WINDOWS\temp\tmp00005351\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005351\ - deleted
C:\WINDOWS\temp\tmp000053ec\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000053ec\ - deleted
C:\WINDOWS\temp\tmp000053f0\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000053f0\ - deleted
C:\WINDOWS\temp\tmp0000543e\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000543e\ - deleted
C:\WINDOWS\temp\tmp000054e9\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000054e9\ - deleted
C:\WINDOWS\temp\tmp0000552f\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000552f\ - deleted
C:\WINDOWS\temp\tmp00005549\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005549\ - deleted
C:\WINDOWS\temp\tmp00005580\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005580\ - deleted
C:\WINDOWS\temp\tmp000055c7\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000055c7\ - deleted
C:\WINDOWS\temp\tmp000055ca\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000055ca\ - deleted
C:\WINDOWS\temp\tmp000055d1\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000055d1\ - deleted
C:\WINDOWS\temp\tmp000055d4\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000055d4\ - deleted
C:\WINDOWS\temp\tmp000055f0\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000055f0\ - deleted
C:\WINDOWS\temp\tmp0000561a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000561a\ - deleted
C:\WINDOWS\temp\tmp00005697\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005697\ - deleted
C:\WINDOWS\temp\tmp000056ab\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000056ab\ - deleted
C:\WINDOWS\temp\tmp000056b9\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000056b9\ - deleted
C:\WINDOWS\temp\tmp000056c6\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000056c6\ - deleted
C:\WINDOWS\temp\tmp000056db\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000056db\ - deleted
C:\WINDOWS\temp\tmp000056fc\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000056fc\ - deleted
C:\WINDOWS\temp\tmp000057d1\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000057d1\ - deleted
C:\WINDOWS\temp\tmp000057d6\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000057d6\ - deleted
C:\WINDOWS\temp\tmp000057e0\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000057e0\ - deleted
C:\WINDOWS\temp\tmp000057ec\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000057ec\ - deleted
C:\WINDOWS\temp\tmp0000580b\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000580b\ - deleted
C:\WINDOWS\temp\tmp00005818\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005818\ - deleted
C:\WINDOWS\temp\tmp00005947\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005947\ - deleted
C:\WINDOWS\temp\tmp00005988\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005988\ - deleted
C:\WINDOWS\temp\tmp000059fa\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000059fa\ - deleted
C:\WINDOWS\temp\tmp00005a71\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005a71\ - deleted
C:\WINDOWS\temp\tmp00005b88\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005b88\ - deleted
C:\WINDOWS\temp\tmp00005be3\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005be3\ - deleted
C:\WINDOWS\temp\tmp00005c04\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005c04\ - deleted
C:\WINDOWS\temp\tmp00005c8d\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005c8d\ - deleted
C:\WINDOWS\temp\tmp00005cac\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005cac\ - deleted
C:\WINDOWS\temp\tmp00005cba\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005cba\ - deleted
C:\WINDOWS\temp\tmp00005cdd\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005cdd\ - deleted
C:\WINDOWS\temp\tmp00005d0d\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005d0d\ - deleted
C:\WINDOWS\temp\tmp00005d57\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005d57\ - deleted
C:\WINDOWS\temp\tmp00005d80\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005d80\ - deleted
C:\WINDOWS\temp\tmp00005dcc\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005dcc\ - deleted
C:\WINDOWS\temp\tmp00005df7\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005df7\ - deleted
C:\WINDOWS\temp\tmp00005dfa\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005dfa\ - deleted
C:\WINDOWS\temp\tmp00005e27\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005e27\ - deleted
C:\WINDOWS\temp\tmp00005e36\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005e36\ - deleted
C:\WINDOWS\temp\tmp00005ea2\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005ea2\ - deleted
C:\WINDOWS\temp\tmp00005ec7\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005ec7\ - deleted
C:\WINDOWS\temp\tmp00005ec9\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005ec9\ - deleted
C:\WINDOWS\temp\tmp00005f03\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005f03\ - deleted
C:\WINDOWS\temp\tmp00005f76\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005f76\ - deleted
C:\WINDOWS\temp\tmp00005f8d\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005f8d\ - deleted
C:\WINDOWS\temp\tmp00005ff0\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005ff0\ - deleted
C:\WINDOWS\temp\tmp00005ffd\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00005ffd\ - deleted
C:\WINDOWS\temp\tmp00006027\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006027\ - deleted
C:\WINDOWS\temp\tmp0000602d\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000602d\ - deleted
C:\WINDOWS\temp\tmp000060dd\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000060dd\ - deleted
C:\WINDOWS\temp\tmp000060e0\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000060e0\ - deleted
C:\WINDOWS\temp\tmp000060ef\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000060ef\ - deleted
C:\WINDOWS\temp\tmp00006120\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006120\ - deleted
C:\WINDOWS\temp\tmp00006173\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006173\ - deleted
C:\WINDOWS\temp\tmp00006178\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006178\ - deleted
C:\WINDOWS\temp\tmp000061b4\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000061b4\ - deleted
C:\WINDOWS\temp\tmp000061fe\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000061fe\ - deleted
C:\WINDOWS\temp\tmp00006272\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006272\ - deleted
C:\WINDOWS\temp\tmp000062f9\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000062f9\ - deleted
C:\WINDOWS\temp\tmp0000634d\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000634d\ - deleted
C:\WINDOWS\temp\tmp0000638d\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000638d\ - deleted
C:\WINDOWS\temp\tmp000063f9\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000063f9\ - deleted
C:\WINDOWS\temp\tmp000063fd\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000063fd\ - deleted
C:\WINDOWS\temp\tmp0000644b\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000644b\ - deleted
C:\WINDOWS\temp\tmp000064f9\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000064f9\ - deleted
C:\WINDOWS\temp\tmp0000658f\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000658f\ - deleted
C:\WINDOWS\temp\tmp00006653\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006653\ - deleted
C:\WINDOWS\temp\tmp000066be\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000066be\ - deleted
C:\WINDOWS\temp\tmp000066dc\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000066dc\ - deleted
C:\WINDOWS\temp\tmp00006784\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006784\ - deleted
C:\WINDOWS\temp\tmp000067d7\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000067d7\ - deleted
C:\WINDOWS\temp\tmp0000681f\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000681f\ - deleted
C:\WINDOWS\temp\tmp0000689b\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000689b\ - deleted
C:\WINDOWS\temp\tmp00006960\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006960\ - deleted
C:\WINDOWS\temp\tmp00006969\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006969\ - deleted
C:\WINDOWS\temp\tmp000069e6\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000069e6\ - deleted
C:\WINDOWS\temp\tmp00006a2c\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006a2c\ - deleted
C:\WINDOWS\temp\tmp00006a56\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006a56\ - deleted
C:\WINDOWS\temp\tmp00006a87\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006a87\ - deleted
C:\WINDOWS\temp\tmp00006b0a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006b0a\ - deleted
C:\WINDOWS\temp\tmp00006b34\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006b34\ - deleted
C:\WINDOWS\temp\tmp00006b53\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006b53\ - deleted
C:\WINDOWS\temp\tmp00006bd0\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006bd0\ - deleted
C:\WINDOWS\temp\tmp00006bd1\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006bd1\ - deleted
C:\WINDOWS\temp\tmp00006bfb\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006bfb\ - deleted
C:\WINDOWS\temp\tmp00006c1a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006c1a\ - deleted
C:\WINDOWS\temp\tmp00006c83\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006c83\ - deleted
C:\WINDOWS\temp\tmp00006d13\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006d13\ - deleted
C:\WINDOWS\temp\tmp00006d27\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006d27\ - deleted
C:\WINDOWS\temp\tmp00006d88\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006d88\ - deleted
C:\WINDOWS\temp\tmp00006dbb\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006dbb\ - deleted
C:\WINDOWS\temp\tmp00006eb2\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00006eb2\ - deleted
C:\WINDOWS\temp\tmp00007060\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007060\ - deleted
C:\WINDOWS\temp\tmp0000707a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000707a\ - deleted
C:\WINDOWS\temp\tmp000070f4\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000070f4\ - deleted
C:\WINDOWS\temp\tmp00007101\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007101\ - deleted
C:\WINDOWS\temp\tmp0000719a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000719a\ - deleted
C:\WINDOWS\temp\tmp00007225\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007225\ - deleted
C:\WINDOWS\temp\tmp0000727a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000727a\ - deleted
C:\WINDOWS\temp\tmp000073af\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000073af\ - deleted
C:\WINDOWS\temp\tmp00007410\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007410\ - deleted
C:\WINDOWS\temp\tmp00007435\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007435\ - deleted
C:\WINDOWS\temp\tmp000074a7\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000074a7\ - deleted
C:\WINDOWS\temp\tmp000074c1\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000074c1\ - deleted
C:\WINDOWS\temp\tmp00007512\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007512\ - deleted
C:\WINDOWS\temp\tmp00007601\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007601\ - deleted
C:\WINDOWS\temp\tmp0000762f\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000762f\ - deleted
C:\WINDOWS\temp\tmp0000764b\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000764b\ - deleted
C:\WINDOWS\temp\tmp0000771a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000771a\ - deleted
C:\WINDOWS\temp\tmp00007727\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007727\ - deleted
C:\WINDOWS\temp\tmp00007754\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007754\ - deleted
C:\WINDOWS\temp\tmp00007775\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007775\ - deleted
C:\WINDOWS\temp\tmp0000778e\tmp00000000 currently in use. Will be deleted when Windows is restarted.
C:\WINDOWS\temp\tmp0000787f\tmp00000000 - deleted
C:\WINDOWS\temp\tmp0000787f\ - deleted
C:\WINDOWS\temp\tmp000078aa\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000078aa\ - deleted
C:\WINDOWS\temp\tmp00007916\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007916\ - deleted
C:\WINDOWS\temp\tmp00007919\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007919\ - deleted
C:\WINDOWS\temp\tmp00007968\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007968\ - deleted
C:\WINDOWS\temp\tmp00007987\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007987\ - deleted
C:\WINDOWS\temp\tmp000079e9\tmp00000000 - deleted
C:\WINDOWS\temp\tmp000079e9\ - deleted
C:\WINDOWS\temp\tmp00007a72\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007a72\ - deleted
C:\WINDOWS\temp\tmp00007ac0\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007ac0\ - deleted
C:\WINDOWS\temp\tmp00007b34\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007b34\ - deleted
C:\WINDOWS\temp\tmp00007b8a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007b8a\ - deleted
C:\WINDOWS\temp\tmp00007c38\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007c38\ - deleted
C:\WINDOWS\temp\tmp00007c8e\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007c8e\ - deleted
C:\WINDOWS\temp\tmp00007d56\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007d56\ - deleted
C:\WINDOWS\temp\tmp00007e00\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007e00\ - deleted
C:\WINDOWS\temp\tmp00007e01\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007e01\ - deleted
C:\WINDOWS\temp\tmp00007e1a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007e1a\ - deleted
C:\WINDOWS\temp\tmp00007e1c\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007e1c\ - deleted
C:\WINDOWS\temp\tmp00007e39\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007e39\ - deleted
C:\WINDOWS\temp\tmp00007e7a\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007e7a\ - deleted
C:\WINDOWS\temp\tmp00007f8f\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007f8f\ - deleted
C:\WINDOWS\temp\tmp00007fbc\tmp00000000 - deleted
C:\WINDOWS\temp\tmp00007fbc\ - deleted
C:\Documents and Settings\NetworkService\Cookies\index.dat - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\5MC24C7B\022-3306.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\5MC24C7B\061-3452.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\5MC24C7B\index-windows-1[1].sucatalog - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\8XAFC1UB\061-3184.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\8XAFC1UB\061-3419.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\GHUVC1QJ\022-3315.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\GHUVC1QJ\061-3527.English[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WMSY350W\061-2802.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WMSY350W\061-3418.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temp\MpCmdRun.log - deleted
C:\Documents and Settings\LocalService\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\LocalService\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Default User\Cookies\index.dat - deleted
C:\Documents and Settings\Default User\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\bayrand\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\bayrand\locals~1\tempor~1\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\bayrand\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\bayrand\Local Settings\Temporary Internet Files\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\All Users\Application Data\Skype\Plugins\Local Cache\~Please do not delete files from this folder - deleted
C:\Documents and Settings\All Users\Application Data\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Local Cache\~Please do not delete files from this folder - deleted
C:\Documents and Settings\All Users\DRM\DRMv1.bak - deleted
C:\Documents and Settings\All Users\DRM\Cache\Indiv02.tmp - deleted
C:\Documents and Settings\bayrand\Application Data\Google\GoogleEarth\myplaces.kml.tmp - deleted
C:\Documents and Settings\bayrand\Application Data\LimeWire\fileurns.bak - deleted
C:\Documents and Settings\bayrand\Application Data\Microsoft\Address Book\bayrand.wab~ - deleted
C:\Documents and Settings\bayrand\Application Data\Microsoft\Word\~WRA0773.wbk - deleted
C:\Documents and Settings\bayrand\Application Data\Microsoft\Word\~WRA1150.wbk - deleted
C:\Documents and Settings\bayrand\Application Data\Microsoft\Word\~WRA2599.wbk - deleted
C:\Documents and Settings\bayrand\Application Data\Microsoft\Word\~WRL0004.tmp - deleted
C:\Documents and Settings\bayrand\Application Data\Microsoft\Word\~WRL1020.tmp - deleted
C:\Documents and Settings\bayrand\Application Data\Mozilla\Firefox\Profiles\oww95uyr.default\bookmarks.bak - deleted
C:\Documents and Settings\bayrand\Bureau\~WRL0754.tmp - deleted
C:\Documents and Settings\bayrand\Bureau\~WRL2580.tmp - deleted
C:\Documents and Settings\bayrand\Bureau\annie\~WRL0445.tmp - deleted
C:\Documents and Settings\bayrand\Bureau\annie\~WRL3376.tmp - deleted
C:\Documents and Settings\bayrand\Bureau\annie\~WRL3711.tmp - deleted
C:\Documents and Settings\bayrand\Bureau\FANNY\DOSSIER IUFM\~WRL0003.tmp - deleted
C:\Documents and Settings\bayrand\Bureau\NICO\Attente\downloads.bak - deleted
C:\Documents and Settings\bayrand\Bureau\NICO\Boulot\~WRL0003.tmp - deleted
C:\Documents and Settings\bayrand\Bureau\NICO\Guitar Pro\Tabs\~$re Straits - Where You Think You're Going.doc - deleted
C:\Documents and Settings\bayrand\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\bayrand\Incomplete\downloads.bak - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\IM\Identities\{19A5C809-F116-4E33-9466-D37860D9127E}\AddressBook\AddressBook.imb.bak - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\IM\Identities\{19A5C809-F116-4E33-9466-D37860D9127E}\Message Store\Folders.bak - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\Microsoft\Messenger\mathieu.nicol@hotmail.fr\SharingMetadata\volume.xml~ - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\Microsoft\Messenger\mathieu.nicol@hotmail.fr\SharingMetadata\Working\database_92A4_C97D_A4C9_63F7\fsr.chk - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\Microsoft\Messenger\nicolas.kervern@hotmail.fr\SharingMetadata\volume.xml~ - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\Microsoft\Messenger\nicolas.kervern@hotmail.fr\SharingMetadata\Working\database_92A4_C97D_A4C9_63F7\fsr.chk - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\Microsoft\Messenger\nikkogekoz@msn.com\SharingMetadata\volume.xml~ - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\Microsoft\Messenger\nikkogekoz@msn.com\SharingMetadata\Working\database_92A4_C97D_A4C9_63F7\fsr.chk - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\Microsoft\Messenger\ridingsun@hotmail.fr\SharingMetadata\volume.xml~ - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\Microsoft\Messenger\ridingsun@hotmail.fr\SharingMetadata\Working\database_92A4_C97D_A4C9_63F7\fsr.chk - deleted
C:\Documents and Settings\bayrand\Local Settings\Application Data\Yahoo\Widget Engine\Analog Clock.widget\Analog Clock.widget\Contents\ve-94.tmp - deleted
C:\Documents and Settings\bayrand\Local Settings\Historique\History.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\bayrand\Local Settings\Temporary Internet Files\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\bayrand\Mes documents\Ma musique\Sauvegarde de la licence\drmv1key.bak - deleted
C:\Documents and Settings\bayrand\Mes documents\Ma musique\Sauvegarde de la licence\drmv1lic.bak - deleted
C:\Documents and Settings\bayrand\Mes documents\Ma musique\Sauvegarde de la licence\drmv2key.bak - deleted
C:\Documents and Settings\bayrand\Mes documents\Ma musique\Sauvegarde de la licence\drmv2lic.bak - deleted
C:\Documents and Settings\bayrand\UserData\index.dat - deleted
C:\Documents and Settings\Default User\Local Settings\Historique\History.IE5\index.dat - deleted
C:\Documents and Settings\LocalService\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat - deleted
C:\Program Files\eBay\eBay Toolbar2\eBayDaemon.BAK - deleted
C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll.tmp - deleted
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe.tmp - deleted
C:\Program Files\eBay\eBay Toolbar2\eBayToolbarComm.dll.tmp - deleted
C:\Program Files\eBay\eBay Toolbar2\TBVersion.xml.tmp - deleted
C:\Program Files\eMule\downloads.bak - deleted
C:\Program Files\eMule\eMule Light.tmpl - deleted
C:\Program Files\eMule\eMule.tmpl - deleted
C:\Program Files\eMule\config\clients.met.bak - deleted
C:\Program Files\eMule\Temp\002.part.met.bak - deleted
C:\Program Files\eMule\Temp\003.part.met.bak - deleted
C:\Program Files\eMule\Temp\010.part.met.bak - deleted
C:\Program Files\Fichiers communs\mozilla.org\GRE\1.7.3_2004091008\softokn3.chk - deleted
C:\Program Files\Guitar Pro 5\tmp\tmp.tmp - deleted
C:\Program Files\Micro Application\Architecte Studio\P!3DFWS.TMP - deleted
C:\Program Files\Micro Application\Diaporama Créateur Photo Haute Définition\Data\Emitters\Snow\Emitter.emi.bak - deleted
C:\Program Files\Mozilla Firefox\freebl3.chk - deleted
C:\Program Files\Mozilla Firefox\softokn3.chk - deleted
C:\Program Files\Mozilla Thunderbird\softokn3.chk - deleted
C:\Program Files\mozilla.org\Mozilla\softokn3.chk - deleted
C:\WINDOWS\imsins.BAK - deleted
C:\WINDOWS\Fonts\VERDANA.TTF.BAK - deleted
C:\WINDOWS\Fonts\VERDANAB.TTF.BAK - deleted
C:\WINDOWS\Fonts\VERDANAI.TTF.BAK - deleted
C:\WINDOWS\Fonts\VERDANAZ.TTF.BAK - deleted
C:\WINDOWS\Installer\MSI14.tmp - deleted
C:\WINDOWS\Installer\MSI15.tmp - deleted
C:\WINDOWS\Installer\MSI32.tmp - deleted
C:\WINDOWS\Installer\MSI34.tmp - deleted
C:\WINDOWS\Installer\MSI39.tmp - deleted
C:\WINDOWS\Installer\MSI3A.tmp - deleted
C:\WINDOWS\Installer\MSI6.tmp - deleted
C:\WINDOWS\Installer\MSI7.tmp - deleted
C:\WINDOWS\Installer\MSI9.tmp - deleted
C:\WINDOWS\Installer\MSIA.tmp - deleted
C:\WINDOWS\Installer\MSIB.tmp - deleted
C:\WINDOWS\Installer\MSIC.tmp - deleted
C:\WINDOWS\Installer\MSIE.tmp - deleted
C:\WINDOWS\Installer\MSIF.tmp - deleted
C:\WINDOWS\pchealth\helpctr\Config\Cache\Personal_32_1036.dat.bak - deleted
C:\WINDOWS\pchealth\helpctr\OfflineCache\index.dat - deleted
C:\WINDOWS\Resources\Themes\Luna\luna.msstyles - deleted
C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.chk - deleted
C:\WINDOWS\system32\wpa.bak - deleted
C:\WINDOWS\system32\CONFIG.TMP - deleted
C:\WINDOWS\system32\olepro32.dll.tmp - deleted
C:\WINDOWS\system32\SETA8.tmp - deleted
C:\WINDOWS\system32\SETAC.tmp - deleted
C:\WINDOWS\system32\SETB4.tmp - deleted
C:\WINDOWS\system32\CatRoot2\edb.chk - deleted
C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat - deleted
C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\index.dat - deleted
C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\MSHist012005111420051115\index.dat - deleted
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat - deleted
C:\WINDOWS\system32\usmt\migwiz.exe.manifest - deleted
Emptied Recycle Bin on drive C:
'Run MRU' list - removed from the registry.
Paint Recent File List - removed from the registry.
WordPad Recent File List - removed from the registry.
Telnet's MRU list - removed from the registry.
CleanUp! 4.0 recovered 1.23 GB of disk space from 1421 files. Wow! You really needed that.
CleanUp! finished on 07/26/07 17:20:26.



Et l'autre scan avec hijack ça me donne ça :

Logfile of HijackThis v1.99.1
Scan saved at 17:28:33, on 26/07/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\GOTOSO~1\VADERE~1\Vaderetro_oe.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Hercules\Hercules WiFi Controller Software\WiFiCtrl.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe
C:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe
C:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
c:\program files\softwin\bitdefender free edition\bdmcon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\notepad.exe
C:\PROGRA~1\CleanUp!\cleanup.exe
C:\Program Files\CleanUp!\Cleanup.exe
C:\Program Files\Hijackthis Version Française\hijackthis vf.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ycomp/defaults/sp/*https://fr.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/wdgt3/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ycomp/defaults/su/*https://fr.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer fourni par Yahoo! France
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: (no name) - {B8C5186E-EC37-4889-9C2E-F73649FFB7BB} - C:\Program Files\Video ActiveX Access\iesplg.dll (file missing)
O2 - BHO: CIEIntegrator Object - {D3B4C621-6024-410B-9F0F-22CBD6981F5E} - C:\Program Files\ProtectionAssuree\Addons\popupg.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O4 - HKLM\..\Run: [Vaderetro Outlook] "C:\PROGRA~1\GOTOSO~1\VADERE~1\VrMoRegister.exe -s"
O4 - HKLM\..\Run: [Vade Retro Outlook Express] "C:\PROGRA~1\GOTOSO~1\VADERE~1\Vaderetro_oe.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [BDMCon] c:\PROGRA~1\softwin\BITDEF~1\bdmcon.exe
O4 - HKLM\..\Run: [BDNewsAgent] c:\program files\softwin\bitdefender free edition\bdnagent.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [rtasks] C:\Program Files\ProtectionAssuree\rtasks.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [WiFiCtrl] C:\Program Files\Hercules\Hercules WiFi Controller Software\WiFiCtrl.exe min
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SuperPower2.exe] C:\DOCUME~1\bayrand\Bureau\NICO\SUPERP~1.EXE /r
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - Startup: Yahoo! Widget Engine.lnk = C:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing)
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Process Monitor (LVPrcSrv) - Unknown owner - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe (file missing)
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)



Ca vous avance pour m'aider?

Merci encore
0
jalobservateur Messages postés 7372 Date d'inscription lundi 16 juillet 2007 Statut Contributeur sécurité Dernière intervention 10 mai 2012 930
26 juil. 2007 à 17:52
Et Suis cette procédure :https://leblogdeclaude.blogspot.com/2006/10/informatique-section-hijackthis.html
Les Xrouges surtout BYE BYE !
0